IP Library Granted Patent US 10,608,816
Granted Patent B2
US 10,608,816 · App. 13/549,967 · Granted Mar 31, 2020

Authentication system for enhancing network security

Inventors: Erix Pizano (Tampa, FL); Kass Aiken (Oldsmar, FL)
Assignee: Ceelox Patents, LLC
H04L9/3213H04L9/3231H04L63/0861H04L63/0428
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,608,816
App. No.
13/549,967
Granted
Mar 31, 2020
Kind
B2
Abstract

A network-based biometric authentication system includes a client computer ( 10 ), a third party server ( 24 ), and a biometric authentication server ( 26 ). A user requests access to a web site hosted by the third party server via the client computer, wherein the third party server communicates a deployable object to the client computer. The client computer executes the deployable object, wherein the object enables the client computer to receive a user name, password, and biometric data from the user and to communicate the user name, password, and biometric data to the biometric authentication server in a secure fashion. The biometric authentication server authenticates the user name, password, and biometric data, and communicates the user name and password to the third party server, which attempts to verify the user name and password in a conventional manner and grants access to the user if the user name and password are verified.

Claims (19)

1. A non-transitory computer-readable storage medium with an executable program stored thereon for enabling authentication of a user at a third-party server, wherein at least one item of stored biometric identification information received from the user is stored so as to be accessible by at least an authentication server, wherein the computer program instructs one or more processors to perform steps of:

receive, by a biometric sensor of a client computer and from the user, user biometric identification information;

encrypt, by the client computer, the user biometric identification information to obtain encrypted user biometric identification information;

transmit, by the client computer and to the authentication server, the encrypted user biometric identification information;

transmit, by the client computer and to the third-party server, at least one item of user authentication information;

decrypt, by the authentication server, the encrypted user biometric identification information;

authenticate, by the authentication server, the user based on the stored biometric identification information to obtain an authenticated user;

receive, by the authentication server and from the third-party server, the at least one item of user authentication information; and

based on the received at least one item of user authentication information and the authenticated user, grant access to the user to the third-party server wherein the authentication server generates keying information,

wherein the authentication server transmits the keying information to the client computer for deriving a key,

wherein the user biometric identification information is encrypted using the key derived from the keying information transmitted by the authentication server.

2. The computer-readable storage medium of claim 1 , wherein the client computer is a handheld device.

3. The computer-readable storage medium of claim 1 ,

wherein the key used to encrypt the user biometric identification information is a first key, and

wherein the user authentication information transmitted by the client computer to the third-party server is encrypted by or is a second key.

4. The computer-readable storage medium of claim 3 , wherein the second key is derived from information provided by the authentication server, and such information is the same as the information used to derive the first key.

5. The computer-readable storage medium of claim 1 , wherein the step of granting access to the user to the third-party server based on the received user authentication information and the authenticated user includes the step of confirming the user authentication information received by the authentication server and from the third-party server is derived from or includes the information provided by the authentication server and to the client computer.

6. The computer-readable storage medium of claim 1 , wherein the step of authenticating the user based on the stored biometric identification information includes confirming the stored biometric identification information matches the decrypted user biometric identification information.

7. The computer-readable storage medium of claim 1 , wherein the step of granting access to the user to the third-party server comprises granting access to the user to a particular resource associated with the third-party server.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 21, 2014
From: CIP, LLC
To: CEELOX PATENTS, LLC
Reel/Frame 033584/0645 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 20, 2014
From: CEELOX, INC.
To: CIP, LLC
Reel/Frame 033571/0060 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 16, 2012
From: PIZANO, ERIX; AIKEN, KASS
To: CEELOX, INC.
Reel/Frame 028557/0944 →
Continuity (3)
Continuation 12913126 · Oct 27, 2010
Continuation 11279715 · Apr 13, 2006
Related Publication 20120304270A1 · Nov 29, 2012